Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill text clearly instructs the agent to run multiple shell commands, but the metadata shown here declares no permissions. That mismatch can cause the host system or user to underestimate the skill's execution capability and approve installation or use without appropriate sandboxing or consent.
